Jaspersoft develops business intelligence and reporting software, with its JasperReports product serving as a widely embedded reporting engine across enterprise applications. The observed vulnerability exposure centers on improper handling of sensitive information, reflecting the data-access scope inherent to a reporting and analytics platform. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Jaspersoft over time
Of all the CVEs published by Jaspersoft as a CNA, 0.0% affect products that Jaspersoft develops as a vendor.
Of all the CVEs published that affect products developed by Jaspersoft, 0.0% are self-published by Jaspersoft as a CNA.
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-14941MEDIUM Jaspersoft JasperReports 4.7 suffers from a saved credential disclosure vulnerability, which allows a remote authenticated user to retrieve stored Data Source passwords by accessin | Oct 2, 2017 | 6.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Jaspersoft.
Media articles that mention a CVE ID that affects a product developed by Jaspersoft — matched by CVE ID, not by vendor name.